Andrew Brown writes:
> solaris 2.3 and 2.4 had something called tcp_eager_listeners which was
> (i believe) implemented as a system-wide setting to affect tcp
> connections. what it did was cause the accept() call to return after
> receipt of the initial syn packet, not after the entire three-way
> handshake had completed.
Great. That will make SYN attacks even more effective at crippling
machines.
.pm